Intrusion Detection Systems are designed to discover malevolent events that attempt to compromise confidentiality, integrity, and availability of information and resources. All network traffic is captured and analyzed by an IDS, regardless of whether it is allowed or not. There are various security tools to find attacks in a network such as firewalls, and anti-virus but IDS provides several additional benefits along with these security measures.
Some of them are (i) To prevent illegal access to unauthorized users in the network, (ii) To find out attacks which take place from outside and inside the network, and (iii) To give useful information about intrusions with less delay which helps in detecting root causes of attacks in short time without causing much loss of information.
Main functions of IDS are as follows: